[zcash/zcash] [Sapling] diversified addresses (#570)

[Above](https://github.com/zcash/zcash/issues/570#issue-124549889) I said that the security assumption needed for unlinkability was «at least as strong as DDH». It is in fact exactly DDH on the Jubjub prime-order subgroup.

Добавить комментарий